MGASA-2017-0442

Source
https://advisories.mageia.org/MGASA-2017-0442.html
Import Source
https://advisories.mageia.org/MGASA-2017-0442.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2017-0442
Related
Published
2017-12-06T11:43:08Z
Modified
2017-12-06T11:15:36Z
Summary
Updated libxfont/libxfont2 packages fix security vulnerability
Details

Fixes open files with O_NOFOLLOW. (CVE-2017-16611)

References
Credits

Affected packages

Mageia:6 / libxfont

Package

Name
libxfont
Purl
pkg:rpm/mageia/libxfont?distro=mageia-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.5.2-1.2.mga6

Ecosystem specific

{
    "section": "core"
}

Mageia:6 / libxfont2

Package

Name
libxfont2
Purl
pkg:rpm/mageia/libxfont2?distro=mageia-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.0.1-4.2.mga6

Ecosystem specific

{
    "section": "core"
}

Mageia:5 / libxfont

Package

Name
libxfont
Purl
pkg:rpm/mageia/libxfont?distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.5.1-1.2.mga5

Ecosystem specific

{
    "section": "core"
}